<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: about Splunk Backend? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279198#M53449</link>
    <description>&lt;P&gt;Thanks a lot ChrisG! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Apr 2016 07:33:49 GMT</pubDate>
    <dc:creator>4Name</dc:creator>
    <dc:date>2016-04-11T07:33:49Z</dc:date>
    <item>
      <title>about Splunk Backend?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279196#M53447</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;

&lt;P&gt;I have several questions about splunk's backend to which I was unable to find a clear answer :&lt;/P&gt;

&lt;P&gt;1) What is Splunk Based on? &lt;BR /&gt;
It's a NoSQL model but is it based on something existant or is it fully developped by Splunk?&lt;/P&gt;

&lt;P&gt;2) Hos does Splunk handles logs' new data? &lt;BR /&gt;
How does it knows where to stop the crawling? or does it crawls the entire files at every check?&lt;/P&gt;

&lt;P&gt;Thanks for your answers!&lt;/P&gt;</description>
      <pubDate>Fri, 08 Apr 2016 09:44:51 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279196#M53447</guid>
      <dc:creator>4Name</dc:creator>
      <dc:date>2016-04-08T09:44:51Z</dc:date>
    </item>
    <item>
      <title>Re: about Splunk Backend?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279197#M53448</link>
      <description>&lt;P&gt;Splunk indexing and storage technology is proprietary and is not based on open source packages.&lt;/P&gt;

&lt;P&gt;For your second question, Splunk software uses a tailing processor to follow incremental changes to log files. For more information about the indexing process in general, read &lt;A href="http://docs.splunk.com/Documentation/Splunk/6.4.0/Indexer/Howindexingworks"&gt;How indexing works&lt;/A&gt; in the &lt;EM&gt;Managing Indexers and Clusters of Indexers&lt;/EM&gt; manual.&lt;/P&gt;</description>
      <pubDate>Fri, 08 Apr 2016 18:49:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279197#M53448</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2016-04-08T18:49:59Z</dc:date>
    </item>
    <item>
      <title>Re: about Splunk Backend?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279198#M53449</link>
      <description>&lt;P&gt;Thanks a lot ChrisG! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Apr 2016 07:33:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279198#M53449</guid>
      <dc:creator>4Name</dc:creator>
      <dc:date>2016-04-11T07:33:49Z</dc:date>
    </item>
    <item>
      <title>Re: about Splunk Backend?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279199#M53450</link>
      <description>&lt;P&gt;The second question is about an interesting subject. &lt;A href="http://docs.splunk.com/Documentation/Splunk/6.0.5/Data/Howlogfilerotationishandled"&gt;http://docs.splunk.com/Documentation/Splunk/6.0.5/Data/Howlogfilerotationishandled&lt;/A&gt; is fascinating. &lt;/P&gt;</description>
      <pubDate>Mon, 11 Apr 2016 21:07:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/about-Splunk-Backend/m-p/279199#M53450</guid>
      <dc:creator>ddrillic</dc:creator>
      <dc:date>2016-04-11T21:07:11Z</dc:date>
    </item>
  </channel>
</rss>

